CRITICAL · 9.8

CVE-2016-2298

Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited allows remote attackers to obtain sensitive cleartext information via unspecified vectors.

Vulnerability Description

Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited allows remote attackers to obtain sensitive cleartext information via unspecified vectors.

CVSS Score

9.8

CRITICAL

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
MeteocontrolWeb\'Log Basic 100-
MeteocontrolWeb\'Log Light-
MeteocontrolWeb\'Log Pro-
MeteocontrolWeb\'Log Pro Unlimited-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2016-2298?

CVE-2016-2298 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited allows remote attackers to obtain sensitive cleartext information via unspecified vectors.

How severe is CVE-2016-2298?

CVE-2016-2298 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2016-2298?

Check the references section above for vendor advisories and patch information. Affected products include: Meteocontrol Web\'Log Basic 100, Meteocontrol Web\'Log Light, Meteocontrol Web\'Log Pro, Meteocontrol Web\'Log Pro Unlimited.